Full Time

Information Security Engineer III - Conduent State & Local Solutions, Inc - Florida (+2 others)

Conduent State & Local Solutions, Inc

Florida (+2 others)
Posted 15 days ago

Through our dedicated associates, Conduent delivers mission-critical services and solutions on behalf of Fortune 100 companies and over 500 governments - creating exceptional outcomes for our clients and the millions of people who count on them. You have an opportunity to personally thrive, make a difference and be part of a culture where individuality is noticed and valued every day.

Information Security Engineer III

About the Role
The Information Security Engineer III serves as a member of the NIST CISO Audit & Assurance team and will assist in the performance of internal audits, ensuring they comply with applicable Conduent and ISO security standards, regulations, and policies. The internal auditor will be professional, independent, impartial, and fair in all interactions.
• The NIST security resource is accountable for procedures and processes that ensure the integrity, confidentiality, and availability of assigned Business units’ information, applications, and infrastructure.
• The resource will perform routine risk assessments, security audits, and vulnerability scans to identify, evaluate, document, and remediate organization risk, control gaps and vulnerabilities.
• This position will be responsible for developing security reports, security recommendations, and security policies and procedures that are meaningful, defensible, and actionable for a variety of audiences as pertained to assigned business units.
• Perform log collection, correlation, reviews, archival, retention, and monitoring of automated alerts for items such as, and not limited to:
• IPS/IDS alerts; change detection (FIM) alerts
• application firewall alerts; malware alerts
• rogue wireless network alerts
• security system health alerts; exploit attempt alerts
• Participate and be an integral component of audit, compliance, and regulatory functions, including and not limited to:
• audits of system security to ensure compliance with Corporate security framework
• NIST 800-53, ISO 27001/2, PC